DirectClient: Texas Education Agency(TEA)
Solicitation Number: 70126092
Title: Security Operations Next-Gen SIEM Analyst
Location: 1701 North Congress Avenue, Austin, Texas 78701
Duration: Until 8/31/2026 with possible extension to 8/31/2027
Last date for submission: May 1, 2026 (2.00 PM-CST)
Important Note: The working position is Telework.
DESCRIPTION OF SERVICES:
This project will optimize the agency s CrowdStrike SIEM and related CrowdStrike services to improve threat detection, monitoring, and response capabilities. The contractor will expand and tune telemetry, integrate additional high value log sources, enhance security dashboards, and support the rollout of additional CrowdStrike services. The effort will increase visibility into endpoint and security risk, improve signal quality and correlation, and provide security leadership with clear insight into security operations effectiveness and overall risk posture.
Duties to Be Performed:
Assess current CrowdStrike SIEM configuration, telemetry coverage, and log ingestion
Enable and tune additional CrowdStrike telemetry to improve visibility and signal quality
Identify and integrate new high value log sources into CrowdStrike SIEM
Develop and refine security dashboards aligned to SOC and executive use cases
Assist with technical enablement and rollout of additional CrowdStrike services
Validate data quality, parsing, and correlation within the SIEM
Coordinate with Security Operations, IT Operations, and system owners
Identify gaps, risks, and improvement opportunities in monitoring and detection
Provide weekly status updates and monthly executive level progress summaries
Deliver supporting documentation and recommendations to sustain improvements
CANDIDATE SKILLS AND QUALIFICATIONS
Minimum Requirements:
Years Required/Preferred Experience
8 Required Demonstrated skill with documentation, reporting, and knowledge transfer
8 Required Experience with Stakeholder Engagement, and Executive Communication
8 Required Experience in SIEM Detection Engineering and Alert Optimization
8 Required Experience in Log Source Integration and Data Normalization
3 Required Hands-On Experience with CrowdStrike SIEM and Dashboard Development
5 Preferred Hands-On Experience with SIEM and Dashboard Development